£25 million misappropriated after video call with deepfake ‘chief financial officer’ @ Arup Group

## Summary of Cyber Security Event: Deepfake Business Email Compromise (BEC) Scam A sophisticated cybercrime incident has surfaced involving the use of deepfake technology in a Business Email Compromise (BEC) scam targeting a multinational firm. The ...

264,000 patients' SSNs and PHI breached @ HealthAlliance, Inc.

In December 2023, HealthAlliance, Inc., a health insurance company, discovered a data breach within its IT network. An unauthorized party accessed and potentially acquired sensitive consumer information between August 18, 2023, and October 13, 2023. T...

Data breach impacted 1.2 million patients @ Tampa General Hospital

In July 2023, the company disclosed a cybersecurity incident involving the personal information of patients. On 31st May 2023, the company detected suspicious activity on their systems using proactive monitoring tools and initiated an investigation...

Cyberattack on government registries @ Ministerstvo yustytsiyi and Ministry of Justice (Ukraine)

On December 19, 2024, Ukraine experienced a significant cyberattack targeting its state registers, marking one of the largest attacks on the nation's critical infrastructure. The attack, attributed to Russian hackers potentially linked to the GRU, dis...

Devices automatically activated Siri while users were having private conversations which resulted in targeted advertisements @ Apple Inc.

In January 2025, Apple agreed to a $95 million settlement for a class action lawsuit alleging Siri, their virtual assistant, recorded private conversations without user consent and shared the data with third-party marketers and advertisers for targete...

Hackers targeted official website putting it out of action temporarily @ Ministero degli affari esteri e della cooperazione internazionale and Ministry of Foreign Affairs and International Cooperation (Italy)

On December 28, 2024, a pro-Russian hacker group, NoName057(16), launched a Distributed Denial of Service (DDoS) cyberattack against approximately ten Italian government and transportation organizations. The websites of the Italian Foreign Ministry, M...

Unauthorised access to consumers’ sensitive information @ Rivers Casino

In late 2024, Rivers Casino Philadelphia experienced a data breach. An unauthorized party accessed and copied files stored on the casino's computer servers. While the casino has not released specific details about the breach, lawsuits filed against ...

Authentication systems subject to cyberattack by external source @ Christopher Newport University

Christopher Newport University (CNU) has experienced a sophisticated cyberattack targeting its authentication systems. The attack, originating from an external source, has resulted in the exposure of sensitive personal information, including names, em...

Thousands of individuals' sensitive personal and protected health data compromised @ Amergis Healthcare Staffing, Inc.

Amergis Healthcare Staffing, Inc. experienced a data breach on February 6, 2024, originating from unauthorized access to Amergis email accounts. The breach, characterized as an external system "breach (hacking)," was discovered the same day. While t...

Unauthorised access to IT network as well as several company email accounts @ Highgate Hotels, L.P.

Highgate Hotels experienced a data breach that exposed sensitive personal information of some of its customers. On March 25, 2024, the company noticed unusual activity on its computer network. Highgate secured its systems, contacted law enforcement, a...

Lead by example in cyber

Premier risk-driven analysis

All our analysis is overseen some of the leading members of the risk community and includes lessons learnt, controls environment and root cause analysis. Learn more...

High-quality structured cyber dataset

Key attributes of each case - such as threat actor, costs incurred, failed controls etc. - are captured through the Global Cyber Event Taxonomy Learn more...

Consulting & training services

Our case studies have provided us with unique insights into the challenges faced and strategies implemented by organisations countering cyber security threats. Learn more...